State-Sponsored Hackers Weaponize ClickFix Tactic in Targeted Malware Campaigns

17/04/2025 0 Comments 0 tags

Multiple state-sponsored hacking groups from Iran, North Korea, and Russia have been found leveraging the increasingly popular ClickFix social engineering tactic to deploy malware over a three-month period from late

Blockchain Offers Security Benefits – But Don’t Neglect Your Passwords

17/04/2025 0 Comments 0 tags

Blockchain is best known for its use in cryptocurrencies like Bitcoin, but it also holds significant applications for online authentication. As businesses in varying sectors increasingly embrace blockchain-based security tools,

Node.js Malware Campaign Targets Crypto Users with Fake Binance and TradingView Installers

17/04/2025 0 Comments 0 tags

Microsoft is calling attention to an ongoing malvertising campaign that makes use of Node.js to deliver malicious payloads capable of information theft and data exfiltration. The activity, first detected in

Critical Erlang/OTP SSH Vulnerability (CVSS 10.0) Allows Unauthenticated Code Execution

17/04/2025 0 Comments 0 tags

A critical security vulnerability has been disclosed in the Erlang/Open Telecom Platform (OTP) SSH implementation that could permit an attacker to execute arbitrary code sans any authentication under certain conditions.

CISA Flags Actively Exploited Vulnerability in SonicWall SMA Devices

17/04/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a security flaw impacting SonicWall Secure Mobile Access (SMA) 100 Series gateways to its Known Exploited Vulnerabilities (KEV) catalog,

Apple Patches Two Actively Exploited iOS Flaws Used in Sophisticated Targeted Attacks

17/04/2025 0 Comments 0 tags

Apple on Wednesday released security updates for iOS, iPadOS, macOS Sequoia, tvOS, and visionOS to address two security flaws that it said have come under active exploitation in the wild.

Experts Uncover Four New Privilege Escalation Flaws in Windows Task Scheduler

16/04/2025 0 Comments 0 tags

Cybersecurity researchers have detailed four different vulnerabilities in a core component of the Windows task scheduling service that could be exploited by local attackers to achieve privilege escalation and erase

From Third-Party Vendors to U.S. Tariffs: The New Cyber Risks Facing Supply Chains

16/04/2025 0 Comments 0 tags

Introduction Cyber threats targeting supply chains have become a growing concern for businesses across industries. As companies continue to expand their reliance on third-party vendors, cloud-based services, and global logistics

Gamma AI Platform Abused in Phishing Chain to Spoof Microsoft SharePoint Logins

16/04/2025 0 Comments 0 tags

Threat actors are leveraging an artificial intelligence (AI) powered presentation platform named Gamma in phishing attacks to direct unsuspecting users to spoofed Microsoft login pages. “Attackers weaponize Gamma, a relatively

Google Blocked 5.1B Harmful Ads and Suspended 39.2M Advertiser Accounts in 2024

16/04/2025 0 Comments 0 tags

Google on Wednesday revealed that it suspended over 39.2 million advertiser accounts in 2024, with a majority of them identified and blocked by its systems before it could serve harmful